ERM vs. Internal Audit

Similar documents
Governing the cloud. insights for 5executives. Drive innovation and empower your workforce through responsible adoption of the cloud

Surveillance Program Design and Behavioral Analytics Implementation

The winning tax transformation trinity. Data, technology and operations

Implementing and maintaining ISAE 3402

Fisher & Paykel Healthcare Limited Review of Directors Fees Summary of EY report dated 19th June 2017

Risk Advisory Services Developing your organisation s governance for competitive advantage

SOLUTION BRIEF RSA ARCHER AUDIT MANAGEMENT

Peter Fuss Senior Advisory Partner Automotive Ernst & Young

Information and Communication Technologies Strategic Plan 2016/ /20

Developing high performance teams. 2 3 October 2017

Enterprise intelligence in modern shipping

The current state of play. The future of risk in the Australian health sector

Enterprise risk management Protecting and enhancing value Advisory

Enterprise risk management Protecting and enhancing value Advisory

Growing opportunity, growing business. EY s financial services practice in ASEAN

Synergies between Risk Modeling and Customer Analytics

Building and operating the UK s infrastructure. Establishing your roadmap to success

report that their financial impact of all fraud, corruption and/or money laundering incidents is over per incident

Session 4C: Model Governance: What Could Possibly Go Wrong? (Part I) Moderator: Dwayne Allen Husbands, FSA, MAAA

Business resilience in the provider care sector. Actively adapting to a changing environment

Advisory Services Governance, Risk & Compliance

Integrating COSO s Fraud Risk Management Guide on an Enterprise Scale

Success peak performance and personal branding December 2017

Risk reduction? Value creation?

Enterprise Risk Management: Developing a Model for Organizational Success. White Paper

The Firm of the Future How Technology Will Impact and Enable Effective Firm Management. Sponsored By:

EY Advisory: Driving business performance

Cloud sourcing: are you familiar with Luxembourg s revised regulatory environment?

Get ready for robots: why planning makes the difference between success and disappointment

Whitepaper September Middle East Perspective State of the Internal Audit Profession 2016

Fujitsu Workplace Anywhere Delivering a service as mobile as your people need to be

The future enterprise. A transformation road map for the automotive organization

Technology evolution. Managing the risk in four key areas

International Financial Reporting Standards (IFRS) Seminar. IFRS in practice the global experience Tehran, April 2017

Internal Audit Advisory

RSA ARCHER MATURITY MODEL: AUDIT MANAGEMENT

4/26. Analytics Strategy

26th Annual Health Sciences Tax Conference

Integrated Business Planning. Robert Rossi May 2015

Brexit: considerations for your Internal Audit operating model

Harmonizing financial accounting, budgeting and macroeconomic statistics: towards a common GAAP-based framework?

Internal audit insights High impact areas of focus

Taking ERM to a. 6 GRC Today / October 2015

What s the cost of control? Keeping control of your business when cash is king

Leveraging IT risk management to boost competitive advantage

Enhancing Audit Committee Excellences through Internal Audit. 21 November 2017

Deloitte Accelerated Value: SaaS innovation for the digital core. Extending the potential of core systems, addressing tomorrow s needs

Enterprise risk management for consumer products companies

EPMO: A Strategic Enabler?

Will planners or passengers design tomorrow s transport networks? EY Mobility Innovation Group

MiFID II Extraterritorial Impacts. Product Manufacturing and Distribution

The compliance investment

Management Update: The CRM Service Provider Magic Quadrant for the Americas

International Finance Corporation

KPMG s Advisory Services for Oracle. kpmg.com

Looking beyond simple savings

Operational Risk Management (#DOpsRisk) Solutions suite

Group Chief Risk Officer

Emotional Intelligence

Securing tomorrow today Improving the process of VAT compliance and return preparation

Banking on gender differences? Similarities and differences in financial services preferences of women and men in a digital world

Consolidated Audit Trail

Global trends for community services in Western Australia

ENTERPRISE RISK MANAGEMENT USING DATA ANALYTICS. Dan Julevich and Chris Dawes April 17, 2015

Putting patients at the heart of your digital strategy

Global Knowledge Partner Program

Find your career formula. Your guide to the EY school and college leaver programmes

Extracting business value through operational intelligence

ENTERPRISE RISK SERVICES Managing Risk, Driving Results

Infrastructure and Capital Projects

Critical Success Factor in ERM Implementation

Demystifying family boards. Strong governance builds a legacy for generations to come

Pharmaceutical Regulatory and Compliance Congress and Best Practices Forum

Internal audit strategic planning Making internal audit s vision a reality during a period of rapid transformation

Solvency II and Risk Management: Generali Group approach. Stefano Ferri Group Chief Risk Officer Generali Group

A guide to assessing your risk data aggregation strategies. How effectively are you complying with BCBS 239?

Effective implementation of COSO s new anti-fraud guidance

CLAconnect.com/creditunions. Impact the Future of Credit Unions

Deloitte Shared Services, GBS & BPO Conference Indirect Tax: Delivering Best-in- Class Compliance in a GBS Environment

The trouble with culture:

Boosting efficiency: building SAP systems into Grupo Argos

It s time for the Active Risk Manager. Successful Organizations have World-Class Risk Management

Efficient risk management. Presentation to the Interdepartmental Accounting Group 2013 conference

Shared Services in the Financial Services Industry: An Operating Model to Reach Strategic Goals

Simplification of work: Knowledge management as a solution within the European Institutions

Law Firm Procurement Survey Executive Summary

represents a likely source of cost savings, improved business performance and stronger customer-facing capabilities.

A Strategic Approach to Bank Fraud

Back to School for Business Services how to get it right?

Risk & Compliance. the way we do it. QualityData Advantage. for Basel Compliance

Third Party Risk Management ( TPRM ) Transformation

Page 4. Page 10. Page 6. Page 14. Page 8. About KPMG. Advisory. Audit. Our value. Tax. KPMG Mongolia 3

WinCo Foods LLC Texas Workforce Conference Diversity and Inclusion in Today s Business

KEY CONSIDERATIONS FOR EXAMINING CHANNEL PARTNER LOYALTY AN ICLP RESEARCH STUDY IN ASSOCIATION WITH CHANNEL FOCUS BAPTIE & COMPANY

Inside of a ring or out, ain t nothing wrong with going down. It s staying down that s wrong. Muhammad Ali

A Risk Management Framework for the CGIAR System

Financial Accounting Advisory Services

International Financial Reporting Standards (IFRS) Seminar in Arabic. Sheraton Hotel Riyadh, Saudi Arabia 23 April 2014

Managing tax Balancing current challenge with future promise The EYE, Amsterdam, 30 November 1 December 2016

Business Resilience: Proactive measures for forward-looking enterprises

Transcription:

ERM vs. Internal Audit Differences and Overlaps Kuwait ERM Conference March 2015

Evolving expectations Risk Management Programs Organisations today are struggling with effectively managing risks across the enterprise. Rapidly changing business trends and technological innovations have significantly changed the risk landscape. Companies lagging behind the innovation curve, increase their vulnerability to these proliferating risks. Risk Management Programs must continually reassess how to effectively and efficiently meet key strategic objectives: Intensification of growth expectation Regulation increases Additional technology innovations entering the market, Amid these challenges, most organisations Risk functions are still struggling to provide the expected value, both in fulfilling its tasks and realising savings. Page 2 Kuwait 3rd ERM Conference - 2015

Key transformational levers Levers critical in enabling successful risk transformations that improve business performance: Using an integrated risk management approach Dynamic Management, aligning strategic risks and business performance measures across the organisation: identifying, managing and monitoring the rapidly evolving strategic and business risk profile Simplifying Risk Management processes Companies with successful GRC align the mandates and scope of their GRC functions, coordinating infrastructure and people, and leveraging consistent methods and practices Embracing enabling technology GRC Technology, Data Risk Analytics & Visualization and Predictive analytics are all now fundamental in an effective risk management program Page 3 Kuwait 3rd ERM Conference - 2015

Using an integrated risk management approach Page 4

Core risk strategy components Aligning the multiple functions responsible for risk in how they handle strategic and preventable risks and standardising key elements of their processes will make decision-making quicker and more effective, as well as help avoid unnecessary costs. The following core risk strategy components are critical: Enterprise-wide risk and control governance model Risk building blocks focused on risk strategy, identification, assessment and governance Convergence of GRC functions and activities Page 5 Kuwait 3rd ERM Conference - 2015

Convergence - Core risk strategy components Consolidating and standardising activities under internal audit, internal controls, legal compliance, ERM, etc. decreases costs, drives enhanced integration, and maximises the value of risk management activities. Page 6 Kuwait 3rd ERM Conference - 2015

Our response: Integrated Risk Transformation Security Governance Operational Resilience Business Continuity Data and information Privacy Monitoring and Compliance IT and Operational Technology Disaster Recovery Infrastructure, Perimeter, Network and Device Security Reduced Silo Operation s Strategic Risks Unified Risk Platform Technical Capability Monitoring and Servicing Risk Managemen t Where it Matters Preventable Risks Risk Strategy Business Strategy Big Data Operational Speed and Efficiency GRC Process and Technology Enablemen t Integrate d Analytical Reporting Cost Effective Risk Management Internal Audit Compliance Risk Governance HSE Internal Controls External Risks A comprehensive, unified and integrated risk platform, aligned with the enterprise risk and business strategy, with the goal to leverage the commonalities of the risk treatment program, and enabled by a common framework, unified technology platform and advanced, up to the minute monitoring and reporting via risk and visualization analytics Page 7 Data Risk Governance Data and Risk Analytics Risk Information Systems Reporting and Dash Boarding

Our response: Integrated Risk Transformation Security Governance Operational Resilience Business Continuity Data and information Privacy Monitoring and Compliance IT and Operational Technology Disaster Recovery nfrastructure, Perimeter, Network and Device Security Reduced Silo Operation s Strategic Risks Unified Risk Platform Technical Capability Monitoring and Servicing Risk Managemen t Where it Matters Preventable Risks Risk Strategy Business Strategy Big Data Operational Speed and Efficiency GRC Process and Technology Enablemen t Integrate d Analytical Reporting Cost Effective Risk Management Internal Audit Compliance Risk Governance HSE Internal Controls External Risks A comprehensive, unified and integrated risk platform, aligned with the enterprise risk and business strategy, with the goal to leverage the commonalities of the risk treatment program, and enabled by a common framework, unified technology platform and advanced, up to the minute monitoring and reporting via risk and visualization analytics Page 8 Data Risk Governance Data and Risk Analytics Risk Information Systems Reporting and Dash Boarding

Conclusion Page 9

Transform your RM program to realise resilience, savings and improve performance. Leading companies have achieved successful results by focusing on: Rapid access to Meaningful, Insightful and relevant information Understand your Risk Profile Shifting risk management focus to a cross-functional approach aligned to strategic risks and business performance measures Standardising and Integrate Risk Management processes to enhance decision making and avoid unnecessary costs Embracing technology to execute processes effectively and efficiently Page 10 Kuwait 3 rd ERM Conference - 2015

Questions for the C-suite Do you have a comprehensive risk vision and strategy? Have your risk vision and strategy addressed the three main risks: external, strategic and preventable? Does your board have confidence that you understand their risk vision and appetite? Have you established your risk appetite and tolerance for strategic risk events that could provide upward or downward potential to the business? Are you confident that there are no gaps in risk coverage and that they have visibility into how issues roll up and impact the strategic business risks? Do you have visibility into the risk coverage of the company? Are you confident that risk responses and compliance activities are optimised across the organisation? Do you effectively leverage GRC technology to support your GRC program? If the answer to any of these questions is no, it is time to take action. Page 11 Kuwait 3rd ERM Conference - 2015

Further information To see the full report Improve your business performance: Transform your governance, risk and compliance program visit www.ey.com/transformgrc For further Risk thought leadership, please refer to our Insights on governance, risk and compliance series at www.ey.com/grcinsights Owen Purcell Owen.purcell@uk.ey.com +44 7968 158865 Page 12 Kuwait 3rd ERM Conference - 2015

Thank you

EY Assurance Tax Transactions Advisory Assurance Tax Transactions Advisory About EY EY is a global leader in assurance, tax, transaction and advisory services. The insights and quality services we deliver help build trust and confidence in the capital markets and in economies the world over. We develop outstanding leaders who team to deliver on our promises to all of our stakeholders. In so doing, we play a critical role in building a better working world for our people, for our clients and for our communities. EY refers to the global organisation, and may refer to one or more, of the member firms of Ernst & Young Global Limited, each of which is a separate legal entity. Ernst & Young Global Limited, a UK company limited by guarantee, does not provide services to clients. For more information about our organisation, please visit ey.com. About EY s Advisory Services Improving business performance while managing risk is an increasingly complex business challenge. Whether your focus is on broad business transformation or more specifically on achieving growth, optimising or protecting your business, having the right advisors on your side can make all the difference. Our 30,000 advisory professionals form one of the broadest global advisory networks of any professional organisation, delivering seasoned multidisciplinary teams that work with our clients to deliver a powerful and exceptional client service. We use proven, integrated methodologies to help you solve your most challenging business problems, deliver a strong performance in complex market conditions and build sustainable stakeholder confidence for the longer term. We understand that you need services that are adapted to your industry issues, so we bring our broad sector experience and deep subject matter knowledge to bear in a proactive and objective way. Above all, we are committed to measuring the gains and identifying where your strategy and change initiatives are delivering the value your business needs.. www.ey.com/grcinsights Page 14